Aggregator
RansomHub
1 year ago
cohenido
RansomHub
1 year ago
cohenido
网络犯罪分子提升钓鱼攻击效力的11种新手段
1 year ago
网络犯罪分子正通过调整社会工程策略,提升攻击的真实性、绕过过滤器并更精准地锁定潜在受害者。
CVE-2025-24121 | Apple macOS up to 13.6/14.6/15.2 access control (Nessus ID 214660)
1 year ago
A vulnerability, which was classified as problematic, has been found in Apple macOS up to 13.6/14.6/15.2. This issue affects some unknown processing. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2025-24121. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24122 | Apple macOS up to 13.6/14.6/15.2 on Intel downgrade (Nessus ID 214660)
1 year ago
A vulnerability classified as problematic was found in Apple macOS up to 13.6/14.6/15.2 on Intel. Affected by this vulnerability is an unknown functionality. The manipulation leads to algorithm downgrade.
This vulnerability is known as CVE-2025-24122. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24160 | Apple macOS denial of service (Nessus ID 214661)
1 year ago
A vulnerability, which was classified as problematic, has been found in Apple macOS. Affected by this issue is some unknown functionality. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2025-24160. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24160 | Apple visionOS denial of service (Nessus ID 214661)
1 year ago
A vulnerability, which was classified as problematic, was found in Apple visionOS. This affects an unknown part. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2025-24160. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24160 | Apple tvOS denial of service (Nessus ID 214661)
1 year ago
A vulnerability has been found in Apple tvOS and classified as problematic. This vulnerability affects unknown code. The manipulation leads to denial of service.
This vulnerability was named CVE-2025-24160. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24137 | Apple watchOS type confusion (Nessus ID 214661)
1 year ago
A vulnerability classified as critical has been found in Apple watchOS. This affects an unknown part. The manipulation leads to type confusion.
This vulnerability is uniquely identified as CVE-2025-24137. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24137 | Apple iOS/iPadOS type confusion (Nessus ID 214661)
1 year ago
A vulnerability classified as critical was found in Apple iOS and iPadOS. This vulnerability affects unknown code. The manipulation leads to type confusion.
This vulnerability was named CVE-2025-24137. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24137 | Apple tvOS type confusion (Nessus ID 214661)
1 year ago
A vulnerability was found in Apple tvOS. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to type confusion.
This vulnerability is handled as CVE-2025-24137. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24137 | Apple macOS type confusion (Nessus ID 214661)
1 year ago
A vulnerability was found in Apple macOS. It has been classified as critical. Affected is an unknown function. The manipulation leads to type confusion.
This vulnerability is traded as CVE-2025-24137. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24137 | Apple visionOS type confusion (Nessus ID 214661)
1 year ago
A vulnerability was found in Apple visionOS. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to type confusion.
This vulnerability is known as CVE-2025-24137. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24101 | Apple macOS up to 15.2 information disclosure (Nessus ID 214659)
1 year ago
A vulnerability classified as problematic has been found in Apple macOS up to 15.2. Affected is an unknown function. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2025-24101. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-1816 | Oracle Database Server 10.1.0.5 Auditing sql injection (Nessus ID 56060 / ID 19232)
1 year ago
A vulnerability classified as critical was found in Oracle Database Server 10.1.0.5. Affected by this vulnerability is an unknown functionality of the component Auditing. The manipulation leads to sql injection.
This vulnerability is known as CVE-2008-1816. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2009-4245 | RealNetworks RealPlayer up to 11.0.5 gifcodec.cpp memory corruption (Nessus ID 44428 / ID 116821)
1 year ago
A vulnerability has been found in RealNetworks RealPlayer up to 11.0.5 and classified as very critical. This vulnerability affects unknown code of the file gifcodec.cpp. The manipulation leads to memory corruption.
This vulnerability was named CVE-2009-4245. The attack can be initiated remotely. There is no exploit available.
vuldb.com
Microsoft Gives Security Copilot Some Autonomy
1 year ago
New agentic AI capabilities in Microsoft Security Copilot will allow agents to triage threats and provide recommendations.
Jeffrey Schwartz
Kubernetes security advisory (AV25-161)
1 year ago
Canadian Centre for Cyber Security
Chinese APT Weaver Ant infiltrated a telco in Asia for over four years
1 year ago
China-linked APT Weaver Ant infiltrated the network of a telecommunications services provider for over four years. The China-linked threat actor Weaver Ant infiltrated the network of a telecom provider in Asia for over four years. During a forensic investigation, Sygnia researchers observed multiple alerts that revealed a re-enabled threat actor account by a service account […]
Pierluigi Paganini